Description
WordPress Plugin User Registration-Custom Registration Form, Login Form, and User Profile is prone to a privilege escalation vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions; other attacks are also possible. WordPress Plugin User Registration-Custom Registration Form, Login Form, and User Profile version 3.1.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.2.0 or latest
References
Related Vulnerabilities
WordPress Plugin MathJax-LaTeX Cross-Site Request Forgery (1.1)
WordPress 4.7.x Multiple Vulnerabilities (4.7 - 4.7.1)
SharePoint CVE-2021-31963 Vulnerability (CVE-2021-31963)
WordPress Plugin WP DoNotTrack Cross-Site Scripting (0.8.8)
WordPress Plugin WP Support Plus Responsive Ticket System Security Bypass (7.1.4)